Hi everyone,

I’ve implemented strong security measures like 2FA, password managers, and even security keys to protect my accounts. Despite all this, I’ve still experienced hacking incidents that don’t seem to fit common explanations like session hijacking or phishing.

I’m trying to understand what advanced attack vectors or vulnerabilities might be at play here, and what steps I can take beyond the usual advice to secure myself better.

Has anyone faced similar issues or can share insights on deeper cybersecurity operations, attack methods, or advanced defenses? What should be the next steps when standard protections fail?

Thanks in advance for your expertise!

  • red_teamer@infosec.pubOP
    link
    fedilink
    arrow-up
    3
    ·
    5 days ago

    I use Windows and primarily browse with Edge, Chrome, and Firefox. For Gmail and mail-related activities, I use Brave.

    • ilillilillilillililli@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      arrow-down
      1
      ·
      5 days ago

      Win 11? I’d do a clean OS install (I highly recommend LTSC, if you must stick with Windows). But definitely format and reinstall OS. If that’s too much effort, check your browsers for rogue extensions and do a full virus and malware check. Clear all browser data and start fresh. I highly recommend using only Firefox, Chrome if the site doesn’t work, and never touch Edge or Brave. Definitely just uninstall Brave. Once you’re confident your OS and browsers are clean: start with a new password manager database and change your passwords.

      • WhyJiffie@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 days ago

        I highly recommend using only Firefox, Chrome if the site doesn’t work, and never touch Edge or Brave.

        I’m not sure about that. Brave is not good but plain chrome is worse, I would rather use the former as fallback, out of these two.